Vulnerabilities > Unrestricted Upload of File with Dangerous Type

DATE CVE VULNERABILITY TITLE RISK
2024-08-30 CVE-2024-8338 Unrestricted Upload of File with Dangerous Type vulnerability in Hfo4 Shudong-Share 2.4.7
A vulnerability was found in HFO4 shudong-share 2.4.7.
network
low complexity
hfo4 CWE-434
8.8
2024-08-30 CVE-2024-8341 Unrestricted Upload of File with Dangerous Type vulnerability in Nelzkie15 PET Shop Management System 1.0
A vulnerability classified as critical was found in SourceCodester Petshop Management System 1.0.
network
low complexity
nelzkie15 CWE-434
critical
9.8
2024-08-30 CVE-2024-8330 Unrestricted Upload of File with Dangerous Type vulnerability in 6Shr System Project 6Shr System
6SHR system from Gether Technology does not properly validate uploaded file types, allowing remote attackers with regular privileges to upload web shell scripts and use them to execute arbitrary system commands on the server.
network
low complexity
6shr-system-project CWE-434
8.8
2024-08-29 CVE-2024-8296 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms
A vulnerability was found in FeehiCMS up to 2.1.1 and classified as critical.
network
low complexity
feehi CWE-434
critical
9.8
2024-08-29 CVE-2024-8295 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms
A vulnerability has been found in FeehiCMS up to 2.1.1 and classified as critical.
network
low complexity
feehi CWE-434
critical
9.8
2024-08-29 CVE-2024-8294 Unrestricted Upload of File with Dangerous Type vulnerability in Feehi Feehicms
A vulnerability, which was classified as critical, was found in FeehiCMS up to 2.1.1.
network
low complexity
feehi CWE-434
critical
9.8
2024-08-28 CVE-2024-6311 Unrestricted Upload of File with Dangerous Type vulnerability in Funnelforms Free
The Funnelforms Free plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'af2_add_font' function in all versions up to, and including, 3.7.3.2.
network
low complexity
funnelforms CWE-434
7.2
2024-08-26 CVE-2024-8170 Unrestricted Upload of File with Dangerous Type vulnerability in Rems Zipped Folder Manager APP 1.0
A vulnerability classified as problematic has been found in SourceCodester Zipped Folder Manager App 1.0.
network
low complexity
rems CWE-434
critical
9.8
2024-08-26 CVE-2024-8166 Unrestricted Upload of File with Dangerous Type vulnerability in Ruijie Eg2000K Firmware 11.1(6)B2
A vulnerability has been found in Ruijie EG2000K 11.1(6)B2 and classified as critical.
network
low complexity
ruijie CWE-434
4.9
2024-08-26 CVE-2024-8164 Unrestricted Upload of File with Dangerous Type vulnerability in Beikeshop
A vulnerability, which was classified as critical, has been found in Chengdu Everbrite Network Technology BeikeShop up to 1.5.5.
network
low complexity
beikeshop CWE-434
8.8